当前位置:首页 >休閑 >【】

【】

2025-01-22 08:33:26 [知識] 来源:有聲有色網

From fingerprints, to facescans, to possibly even sweat analysis, biometrics have become the default way many of us secure our data and unlock our smart devices. But with that ubiquity also comes risk, as security researchers have demonstrated time and time again that many of these supposed safeguards are susceptible to multiple-step hacks.

But what about, you know, single step hacks? Like, for example, hacking off someone's thumb? The question of whether or not a dead body or missing limb could be used to unlock a phone is not a new one, and has been asked since at least the release of Apple's Touch ID. And yet, despite the years of coverage, no one has been able to agree on an answer.

SEE ALSO:So how worried should we be about Apple's Face ID?

The rather morbid debate popped back into the public consciousness this month after the tragic November 5 mass shooting at a Texas church. USA Today subsequently reported that the FBI was attempting to gain access to the shooter's iPhone, and that, if Touch ID was enabled, a specialized reproduction of his dead finger would likely have sufficed to unlock it — assuming it was used within a 48-hour window of the last time the phone was unlocked.

This claim, based on the expertise of Anil Jain, a professor of computer science at Michigan State University, adds a confusing layer to the reporting of numerous outlets — including this one — that a dead hand itself would notbe sufficient to bypass Touch ID. That's because the Apple-developed biometric uses radio frequency waves to check the skin underneath a finger's outer layer, a trick that supposedly prevents a dead one from being used. What's more, the tech also relies on a capacitive sensor which is activated by an electrical charge in living skin. No living skin, no luck.

Mashable Games

So can smartphones make a distinction between the living and the dead, or not? The answer matters. If the fingers, eyes, or face of a deceased victim be used either by law enforcement or criminals to unlock a smartphone, then biometric locks have a brutally defined shelf-life. This, of course, would stand in contrast to a strong alphanumeric password which can't (at least yet) be pried from your ever-so-quickly decaying body, and would suggest yet another reason that the security conscious should avoid biometrics like a privacy-violating plague.

Mashable ImageCredit: BRITTANY HERBERT/MASHABLE

Mashable repeatedly asked Apple, Google, and Samsung for comment on the matter, but received not a single response to our numerous inquiries. We also reached out to a host of biometric security experts, hackers, digital law experts, and forensic pathologists in an attempt to get to the bottom of what has passed from the realm of dark thought experiment to serious inquiry, but the responses (or lack thereof) only further muddied the waters.

It's almost as if, when it comes down to it, there's no agreement on whether or not a dead body could pass the biometric test.

The experts

There are, of course, many different forms of biometric security. Different devices rely on varying hardware and software solutions for purposes of authentication, and some of those have shown to be substantially less robust than others.

Daniel Edlund of Precise Biometrics, a company that makes and sells software for fingerprint authentication, told Mashable that the dead-body question comes down to a feature known as "liveness detection."

Mashable Light SpeedWant more out-of-this world tech, space and science stories?Sign up for Mashable's weekly Light Speed newsletter.By signing up you agree to our Terms of Use and Privacy Policy.Thanks for signing up!

"If the fingerprint technology is equipped with what is called liveness detection, or in professional terms 'Presentation Attack Detection,' it will with a high security reject false fingerprints," he explained over email. "It doesn't matter if it is a copy of a fingerprint, such as a rubber, silicon or plastic replication, or a dead finger."

Touch ID, which relies on the aforementioned capacitive sensor and RF waves, would seem to fall in that category. It's less clear with Face ID, which Apple claims is "attention-aware." However, according to the company, that simply means the phone "recognizes if your eyes are open and looking towards the device." As the 1993 modern American classic Demolition Manmakes clear, an eye doesn't necessarily need to be attached to a living head to fulfill that requirement.

Nate Cardozo, Senior Staff Attorney on the Electronic Frontier Foundation's digital civil liberties team, had a different take based upon his technical knowledge of the systems in question.

"It's my understanding that while Touch ID does work [with a deceased individual], Face ID won't because it detects 'attention' from the user."

Mashable ImageFace ID doing its thing.Credit: apple

This sentiment was partially echoed by Phobos Group security researcher Dan Tentler, who likewise gave a conditional response when asked about using the dead to unlock a smartphone.

"Touch ID, definitely," he observed over email. "Face ID? Hard to say, you could probably get it done if you had the body, and were able to open the person's eyes. But then again, there was that one guy who shaved his beard and Face ID quit working, so it's hard to say."

Yet another expert, UnifyID co-founder and CEO John Whaley, went even further. His company specializes in behavioral biometrics — a way to "authenticate you based on unique factors like the way you walk, type, and sit" — and his assessment of dead bodies and biometrics suggests that your digital secrets won't die with you.

"It is certainly possible to authenticate with biometrics even without user consent, or the person even being alive," he explained. "This is especially true if the factor they use is static, like a fingerprint or a face. One attempt to combat this is to use a liveness check, but even those are often easily spoofable."

In other words, in Whaley's mind, even the latest and supposed greatest in biometric security —Face ID — is likely capable of being unlocked with the face of a deceased individual.

Death and your data

Manufacturers around the world love to brag about the biometric locks built into their smartphones, claiming to have found that sweet spot between security and convenience. However, short of someone conducting an extremely unethical experiment, the "severed finger test" is one that companies like Apple and Google may never have to take — let alone prove they can pass.

That won't matter for most consumers, who, if presented with the possibility of having their hand lobbed off by a criminal trying to break into their phone, will likely be more concerned about their digits than their documents. However, as time passes and biometric sensors are added to more and more of the devices that surround us, a new question is presented: who has access to our identity — and our data — after we die?

Much like whether or not a corpse can be used to unlock an iPhone, that question still remains very much unanswered.


Featured Video For You
Sorry, but you just can't erase yourself from the internet

TopicsAppleCybersecurityGoogleiPhoneSamsung

(责任编辑:休閑)

    推荐文章
    • Metallica to seek and destroy your eardrums with new album this fall

      Metallica to seek and destroy your eardrums with new album this fallMetallica was never going to keep quiet forever.  。 The band has announced its new album, Hardwired&he ...[详细]
    • 31周胎盤成熟度2級正常嗎

      31周胎盤成熟度2級正常嗎許多孕婦其實對於胎盤的成熟度是沒有概念的,不知道胎盤的成熟度和孩子的發育會有什麽關係。胎盤1級和2級對於胎兒來說都是可以正常發育的 ,如果胎盤出現3級的情況 ,說明胎盤正在老化 ,有可能會造成胎兒缺氧的情況 ...[详细]
    • Customizable Dyson Airwrap is $100 off in April 2024

      Customizable Dyson Airwrap is $100 off in April 2024Save $100: Through the end of April, customers who use the Dyson Airwrap customization tool on Dyson ...[详细]
    • 香蕉和山楂能一起吃嗎

      香蕉和山楂能一起吃嗎經常食用水果對身體的益處比較多,比如山楂和香蕉等等 ,這兩種水果都具有一個的共同點 ,就是維生素含量很高,可以對人體的健康帶來幫助,山楂的功效更是很多,比如治療心血管方麵的疾病  ,還可以起到健脾消食以及抗癌 ...[详细]
    • Pokémon Go is so big that it has its own VR porn parody now

      Pokémon Go is so big that it has its own VR porn parody nowBehind every great entertainment property there's a cheekily named porn parody. Super Hornio Bros. G ...[详细]
    • 排卵試紙雙杠多久同房

      排卵試紙雙杠多久同房如果女性的月經並不是很正常,懷孕起來就比較難了 ,這時候可以選擇每個月進行排卵期試條測試 ,排卵試紙表現為雙杠時就表現離排卵不遠了,那麽排卵試紙雙杠多久同房比較適合呢 ?一般來說 ,出現雙杠後代表女性將在接下 ...[详细]
    • 兒童查微量元素掛什麽科

      兒童查微量元素掛什麽科兒童的健康其實都是各位家長所關心的,兒童身體中的微量元素其實對於孩子的健康影響還是很大的 。一般兒童檢查二兩元素是需要掛兒科的 ,然後進行血液的樣本檢查 。進行微量元素檢查的寶寶一般是半歲之後進行的 ,並且每 ...[详细]
    • 小兒盜汗的症狀和治療方法

      小兒盜汗的症狀和治療方法盜汗是一種比較常見的症狀,一般情況下 ,體質虛弱的人出現盜汗的可能性比較大  。盜汗會發生在各個年齡段的人身上 ,比如說很多寶寶,就因為脾虛的問題  ,出現盜汗的症狀,在這種情況下 ,家長們就需要給寶寶加強營養,同 ...[详细]
    • Sound the alarms: Simone Biles finally met Zac Efron

      Sound the alarms: Simone Biles finally met Zac EfronIs there anything Simone Biles can't do?The unstoppable gymnast just won her fifth medal of the Rio ...[详细]
    • 哪些人該做宮頸癌篩查

      哪些人該做宮頸癌篩查宮頸癌篩查是一種可以有效檢測出女性是否存在宮頸癌疾病的檢測手段 ,所以宮頸癌篩查已經成為了越來越常見的一種檢測方法 。主要是由於在現代社會女性的生活壓力越來越大 ,所以患上宮頸癌疾病的女性人群範圍正在不斷擴 ...[详细]
    热点阅读